BlueGrove Labs Privacy Policy
Last updated: September 1, 2026. This Privacy Policy explains how BlueGrove Labs accesses, uses, stores, shares, and protects information across our websites, Atlassian apps, documentation, and support services.
Scope
This Policy applies to BlueGrove Labs websites, documentation, support channels, and apps, plugins, extensions, and related services that link to this Policy (collectively, the “Services”).
A product page, Marketplace listing, permissions and data page, order, or separate agreement may provide additional product-specific details. Those details supplement this Policy and describe the narrower data practices of that product.
This Policy does not govern Atlassian products, Atlassian Marketplace, or other third-party services. Their own terms, privacy policies, and administrator controls apply to those services.
Information our Services may process
The information processed depends on the product, the features a customer enables, the permissions granted by the Atlassian administrator, and the actions taken by the user.
An app may process Atlassian site and installation identifiers, licensing or entitlement information, user account identifiers and profile details, locale and timezone, product context, and permission information needed to operate the requested feature.
Depending on the app, requested functionality may process Jira work items, fields, projects, filters, boards, sprints, users, histories, or configuration; Confluence pages, live docs, blog posts, versions, text, structure, links, tables, media, macros, or metadata; and other customer content made available through approved platform APIs.
Our apps are designed to operate within their declared platform scopes and the current user’s permissions. They do not grant access to customer content that the underlying platform does not make available.
- Product-specific permissions and data pages explain the data required for each app.
- Customers control app installation, platform permissions, user access, and the source content made available to an app.
- We do not sell customer data or use Atlassian customer content for advertising.
Configuration and stored data
Depending on the product, a Service may store settings and configuration such as saved definitions, display preferences, administrator or project settings, calendars, selected fields, product options, recent-item references, comparison references, version numbers, or dashboard and module configuration.
Each product’s permissions and data documentation describes what it stores, where it is stored, and what it intentionally does not retain. A product-specific description of more limited storage controls for that product.
Where a Service uses browser storage, it may retain language, theme, local interface preferences, or temporary feature state on the user’s device.
Website, documentation, and support information
Our public website may process ordinary hosting, DNS, security, request-log, and lightweight usage information. The website also stores language and theme preferences in the browser. It does not provide access to a customer’s Atlassian content.
If you contact us, we may receive the name, email address, organization, Atlassian site, product name, request content, screenshots, logs, error messages, diagnostics, or other information you choose to provide.
Do not send passwords, access tokens, secrets, or sensitive customer content in a support request unless your organization has approved the disclosure and the information is necessary for support.
How we use information
We process information to provide requested product features; authenticate and authorize access; manage configuration, licensing, and entitlements; respond to support; investigate security or reliability issues; maintain and improve the Services; communicate about material service matters; and comply with legal obligations.
We may use aggregated or de-identified information to understand product operation and improve reliability, provided it cannot reasonably identify a customer or individual.
We do not sell, rent, or trade customer data, and we do not use Atlassian customer content for targeted advertising.
Sharing and service providers
We may process information through Atlassian for platform APIs, Forge hosting, authentication, authorization, storage, logging, licensing, billing, Marketplace distribution, and app operation.
We may use service providers for website hosting, DNS, security, customer support, operational communications, and professional services. They may process information only for the relevant service and subject to appropriate obligations.
We may disclose information where required by law or legal process; to protect rights, safety, or security; in connection with a corporate transaction; or with the customer’s direction or consent.
Data location and international transfers
Where an app uses Atlassian Forge hosted compute or storage, Atlassian and its subprocessors process that data under Atlassian’s Forge terms, data processing terms, security controls, and available data residency capabilities.
A product that uses an approved external service or remote system will identify that processing in its product-specific documentation or Marketplace disclosures.
Website and support information may be processed in countries where BlueGrove Labs or its service providers operate. Where required, we rely on appropriate safeguards for international transfers.
Retention and deletion
Feature data and configuration may be retained while the relevant Service remains installed or while needed to provide the feature, unless deleted earlier through product controls, by an authorized administrator, or in response to a valid request.
Support and security records may be retained as long as reasonably needed to provide support, maintain business records, resolve disputes, prevent abuse, comply with law, and protect the Services.
After uninstall or a valid deletion request, we take reasonable steps to delete or de-identify personal data under our control, subject to legal, security, backup, operational, and technical limitations. Data controlled by Atlassian or another platform remains subject to that provider’s retention behavior.
Security
We use reasonable technical and organizational measures appropriate to the Services and the information processed.
Our Atlassian apps are designed to use platform authentication, authorization, tenant boundaries, and product permission models, and to request only permissions needed for documented features.
No transmission or storage method can be guaranteed completely secure. Contact us promptly if you believe a BlueGrove Labs Service has a security issue.
Your rights and choices
Depending on your location, you may have rights to access, correct, export, object to, restrict, or delete personal data, or to withdraw consent where processing is based on consent.
Customers and Atlassian administrators can manage installations, subscriptions, users, permissions, and product configuration through the applicable platform. Users can choose what information they include in support requests.
We may need to verify your identity, authority, and relationship to the relevant customer or Atlassian site before completing a request.
Customer responsibilities
Customers and administrators are responsible for configuring platform permissions and app access, providing required notices to their users, choosing what data and features to use, and ensuring their use of the Services complies with internal policies, contracts, and applicable law.
Children’s privacy
The Services are intended for organizations and business use and are not directed to children.
Changes to this Privacy Policy
We may update this Policy as our Services, products, or legal obligations change. We will revise the “Last updated” date and provide additional notice where appropriate.
Contact
Privacy questions, access or deletion requests, and security concerns can be sent to [email protected]. Include the organization, Atlassian site if relevant, product name, and enough context for us to identify the request.
Product support should use the support portal when available.